Xmlbeam is a lightweight Java library for XML and XPath manipulation that provides a niche utility for XML processing workflows. The durable signal centers on the library's XML parsing role, with observed exposure centering on improper restriction of external entity references, a weakness class inherent to XML processors that accept untrusted input. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Xmlbeam over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-1259HIGH Spring Data Commons, versions 1.13 prior to 1.13.12 and 2.0 prior to 2.0.7, used in combination with XMLBeam 1.4.14 or earlier versions, contains a property binder vulnerability ca | May 11, 2018 | 7.5 | 28 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Xmlbeam.
Media articles that mention a CVE ID that affects a product developed by Xmlbeam — matched by CVE ID, not by vendor name.